ASSYST logo

Audit Specialist - Cyber Security (Mid-Level)

ASSYST

  • Baltimore, Maryland
  • 10 days ago

    Highlights

    Track all deliverables, report regularly on control exceptions and deficiencies per system, ensure that measures raised in assessments are implemented following risk profiles, and address the root causes of risks using NIST guidelines. Coordinate preliminary investigations to acquire artifacts for all requests associated with various ad-hoc audits across multiple stakeholders (system owners) and organizations.

    Numbers & Facts

    LocationBaltimore, Maryland
    IndustryComputer/IT Services
    Company Size100 to 499 employees
    Year Founded1993
    Websitehttps://www.assyst.net/

    Description

    ASSYST's Information Assurance and Cyber Security Practice is seeking a mid-level (Audit Specialist - Cyber Security) to support our Federal Program. ASSYST is currently managing Cyber initiatives for various customers including Federal, State, and Local governments. Our end-to-end services cover architecture, design, policy, monitoring, detection, remediation, compliance, awareness, and training.Responsibilities:

    • Work liaison between external auditors and internal security systems.
    • Conduct compliance checks and vulnerability assessments for internal teams assuring adherence to FISMA / NIST Framework.
    • Identify, define, and assess documents for complex system reports and technical requirements within cross functional teams.
    • Develop and assess reports for audit Project metrics, status reports, risk logs, POAM creation and lessons learned per Audit.
    • Conduct Data Calls and compliance checks for various audits and projects for security systems.
    • Working alongside system owners, ISSO, and CRA oversight.
    • Track all deliverables, report regularly on control exceptions and deficiencies per system, ensure that measures raised in assessments are implemented following risk profiles, and address the root causes of risks using NIST guidelines.
    • Coordinate preliminary investigations to acquire artifacts for all requests associated with various ad-hoc audits across multiple stakeholders (system owners) and organizations.
    • Audits for FISMA-A123 and CFO just to name a few.
    • Perform data entry into client's Governance, Risk, and Compliance tools for audits and system reports for the current and future fiscal year.

    Required Qualifications:

    • 3-5 experience in a similar position focused on IT Audit/ Cyber Security supporting Federal programs
    • Experience in information security, policy and risk management, auditing, and audit management
    • Familiarity with the Risk Management Framework, NIST 800-53, Vulnerability Analysis, FISMA and FedRAMP.
    • CISA Certification (Certified Information Systems Auditor) preferred
    • Strong analytical and problem-solving skills.
    • Excellent communication and collaboration abilities

    ASSYST is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, age, disability, military status, national origin or any other characteristic protected under federal, state, or applicable local law

    About Company

    ASSYST is an agile, CMMI Level 3 certified firm that excels at simplifying IT and business processes, removing unnecessary redundancy, and delivering targeted information for faster, smarter decisions to improve operations and productivity. We work closely with stakeholders, cross-functional teams, and other technology and services vendors to develop solutions utilizing rigorous adherence to the CMMI-based processes, Agile Framework (Scrum and SAFe), ITSM/ITIL services model, and ISO standards to achieve consistent process improvement. ASSYST represents a balanced approach to providing continuity of service while evoking innovation, fresh ideas, and practices to actualize modernization initiatives. We work collaboratively with customers and partners on human-centered design, leverage emerging technologies, apply innovation to deliver solution outcomes that improve productivity, user experience, and customer delight.

    Our specialties include: Big Data and Analytics, Enterprise Content Management, Information Assurance, Cloud Computing, Knowledge Management, Automation, DoD IT Services, Cybersecurity, Test Engineering, FHIR, HealthIT, Data Science, Azure, Agile, Digital Services, AWS GovCloud, ERP, and SAFe

    Similar Jobs

    See more jobs